Intel

AIKIDO-2026-328865

GNOME.libxslt is vulnerable to Type Confusion

Type ConfusionCVE-2025-11731 Published Yesterday

31

Low Risk

This Affects:

C++GNOME.libxslt
0.0.1 - 1.1.43
Fixed in 1.1.44
Are you affected? Scan for Free

TL;DR

While compiling a stylesheet, exsltFuncResultComp follows parent pointers to check that func:result is under func:function. If that ancestor is missing, the check continues onto the document node and reads the ns slot, which on a document node holds the compression and standalone integers, so a stylesheet with a misplaced func:result can crash the process. The fix stops the parent check at the document node.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and you load untrusted XSLT that places func:result outside func:function.

Background info

GNOME.libxslt is vulnerable to Type Confusion in versions 0.0.1 - 1.1.43.

How to fix this

Upgrade the GNOME.libxslt library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform